← Back

CVE-2023-42961

nvd nist
Published: Apr 11, 2025Modified: Apr 21, 2025

JSON object

Loading...
6.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Exploitability: 2.8 / Impact: 3.4
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

A path handling issue was addressed with improved validation. This issue is fixed in iOS 17 and iPadOS 17, iOS 16.7 and iPadOS 16.7, macOS Sonoma 14, macOS Ventura 13.6, macOS Monterey 12.7. A sandboxed process may be able to circumvent sandbox restrictions.

Affected (4)

3 products
Ipados
Iphone Os
Macos
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 16.7
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 16.7
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Apple
From 12.0 to 12.7
From 13.0 to 13.6

References (5)

Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory

Timeline

No history available yet.